Address bar spoofing vulnerability

Opera web browser and M2 mail client from Opera Software. (for Windows, Macintosh and Linux.)

Moderators: Edward, Mandrake

Address bar spoofing vulnerability

Postby Jeffredo » Thu 08 Jul, 2004 8:44 pm

This is getting a little tedious! I know Opera is pretty secure overall, but to have yet another published vulnerability the day after 7.52 was released is a bit "IE-ish"! :(

I'm sure Opera engineers are hard at work on it and since I have a fast connection it's not really a big issue for me when the fix is released.

http://secunia.com/advisories/12028/
UserAgent: Opera/7.52 (Windows NT 5.1; U) [en]
Jeff
User avatar
Jeffredo
super member
super member
 
Posts: 169
Joined: Tue 09 Mar, 2004 11:40 pm
Location: Monterey, California

Postby Mandrake » Thu 08 Jul, 2004 8:47 pm

Well, Mozilla just released new versions of their products, so it's not just Opera that's squishing the security bugs :). That flaw should have been addressed in 7.5.2 though.
UserAgent: Mozilla/5.0 (Windows; U; Windows NT 5.1; en-US; rv:1.7) Gecko/20040707 Firefox/0.9.2
Core i7 920 | ASUS P6T Deluxe v2 | 3TB+ HDD | 12GB Corsair DDR3 | Radeon 4890 Xfire | X-Fi Titanium Fatal1ty | Logitech Z-5500 Speakers | Dell 3008WFP | Seven RC1
User avatar
Mandrake
Moderator
Moderator
 
Posts: 4160
Joined: Fri 13 Sep, 2002 6:35 am

Postby Edward » Fri 09 Jul, 2004 3:59 pm

I tried this with both Mozilla 1.7 and Opera 7.52 for Linux. It appears to affect Opera, but not Mozilla.
UserAgent: Mozilla/5.0 (X11; U; Linux i586; en-US; rv:1.7) Gecko/20040616
SillyDog701 Moderator
debian 6 - iceape - iceweasel - icedove - seamonkey
User avatar
Edward
Moderator
Moderator
 
Posts: 3568
Joined: Sun 01 Dec, 2002 7:15 pm

Postby Edward » Fri 09 Jul, 2004 4:04 pm

Mandrake's UserAgent wrote:UserAgent: Mozilla/5.0 (Windows; U; Windows NT 5.1; en-US; rv:1.7) Gecko/20040707 Firefox/0.9.2


If 0.9.2 fixes this issue, why does their revision still show 1.7? Shouldn't that have been 1.7.1?? :?
UserAgent: Mozilla/5.0 (X11; U; Linux i586; en-US; rv:1.7) Gecko/20040616
SillyDog701 Moderator
debian 6 - iceape - iceweasel - icedove - seamonkey
User avatar
Edward
Moderator
Moderator
 
Posts: 3568
Joined: Sun 01 Dec, 2002 7:15 pm


Return to Opera

Who is online

Registered users: Google [Bot], Yahoo [Bot]